AI-Application Security Architect

Stifel Financial Corp.

St. Louis (MO)

On-site

USD 130,000 - 190,000

Full time

16 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Stifel Financial Corp. is seeking an AI/Application Security Architect to define and govern the enterprise security architecture for AI-enabled applications.

You will collaborate with engineering leadership to balance risk reduction with velocity, oversee threat modeling, and implement scalable security controls across cloud-native and microservices environments. The role requires deep security expertise, strong communication, and the ability to mentor security engineers and development teams.

Qualifications

  • Bachelor's degree in CS/InfoSec or related field.
  • 7+ years in application security architecture, design, and development.
  • Professional security certifications preferred (CISSP, CISM, GIAC).

Responsibilities

  • Define and govern enterprise AI / app security architecture across the organization.
  • Embed security throughout the SDLC with secure-by-design practices.
  • Lead AI/app architecture reviews, threat modeling, and risk assessments.
  • Prototype security patterns and reference architectures for modern stacks.
  • Govern AI security tooling (SAST, DAST, SCA, secrets scanning) and KPIs.

Skills

Security principles
OWASP
SANS
NIST
Java
.NET
Python
Nessus
Burp Suite
Threat modeling
Cloud security

Education

Bachelor's degree in Computer Science, Information Security, or related field
Master's degree preferred
CISSP or equivalent preferred

Tools

Nessus
Metasploit
Burp Suite

Job description

Why Stifel

Stifel strives for a culture that puts its clients and associates first: a culture where everyone belongs, everyone is welcome, and everyone contributes to the success of our clients, their careers, and the firm as a whole.

Let’s talk about how you can find your place here at Stifel, where success meets success.

What You'll Be Doing

The AI-Application Security Architect is responsible for defining, governing, and advancing the enterprise AI / application security architecture across the organization. This role provides strategic and technical leadership to ensure applications are designed and built securely at scale, aligned with business objectives, regulatory requirements, and evolving threat landscapes. Acting as a trusted advisor to engineering leadership, this role balances risk reduction with development velocity and innovation.

What We're Looking For
  • Design and lead the implementation of enterprise-wide AI / application security strategies, policies, standards, and reference architectures aligned with business objectives, regulatory requirements, and industry best practices.
  • Partner closely with software engineering, platform, and DevOps teams to embed security throughout the SDLC, promoting a secure-by-design culture and enabling scalable, automated security controls.
  • Lead and oversee AI / application architecture reviews, threat modeling exercises, and design risk assessments to proactively identify and mitigate security risks.
  • Define, validate, and prototype security architecture patterns through hands-on evaluations, proof-of-concepts (POCs), and technical deep dives, ensuring proposed controls are practical and effective.
  • Establish and maintain secure design patterns and reference architectures for modern application stacks, including AI, cloud-native, microservices, APIs, and event-driven systems.
  • Define and govern the integration application security tooling (SAST, DAST, SCA, secrets scanning, CI/CD controls) to improve coverage, consistency, and developer adoption.
  • Develop and maintain AI / application security metrics and KPIs to measure program maturity, communicate risk posture to leadership, and drive continuous improvement.
  • Serve as a subject matter expert (SME) and escalation point for complex AI / application security design decisions, risk exceptions, and non-standard architectures.
  • Establish and enforce AI / application security architecture governance, including design review checkpoints, standards enforcement, and defined escalation paths for non-compliant designs.
  • Collaborate with enterprise architecture, cloud security, infrastructure, and GRC teams to ensure application security controls are aligned across platforms and technologies.
  • Research and evaluate emerging threats, security technologies, frameworks, and industry trends, recommending strategic improvements to the enterprise application security architecture enterprise application security architecture.
  • Mentor and provide technical guidance to AI / application security engineers and development teams, raising overall security maturity and architectural consistency.
  • Lead AI-specific application threat modeling, addressing risks such as prompt injection, model inversion, data poisoning, unauthorized model access, and misuse of generative outputs.
  • Define and govern secure architecture patterns for AI-enabled applications, including controls for data protection, identity, authorization, logging, and monitoring.
  • Establish security and governance standards for the adoption of third-party AI platforms and APIs, ensuring alignment with enterprise security, privacy, and risk management frameworks.
  • Partner with legal, compliance, and risk teams to ensure responsible and compliant use of AI capabilities, consistent with enterprise risk tolerance and regulatory expectations.
What You'll Bring
  • Deep understanding of security principles, methods and technologies related to application development, deployment, and maintenance.
  • Experience with industry standard security frameworks, such as OWASP, SANS, or NIST.
  • Knowledge of various programming languages, such as Java, .NET, and Python.
  • Experience with security testing tools, such as Nessus, Metasploit, and Burp Suite.
  • Strong analytical and problem-solving skills, with the ability to identify and mitigate security risks.
  • Strong understanding of cloud computing and associated security risks.
  • Excellent communication skills, with the ability to effectively communicate complex security issues to technical and non-technical audiences.
Education & Experience
  • Minimum Required: Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience.
  • Preferred: Master's degree in Computer Science, Information Security, or a related field.
  • Minimum Required: 7+ years of experience in application security architecture, design, and development.
Licenses & Credentials
  • Preferred: Professional security certifications, such as CISSP, CISM, or SANS GIAC.
Systems & Technology
  • Expertise in code analysis and testing tools.
  • Expertise in web application firewalls.
  • Ability to understand and support multiple programming languages and frameworks.
  • Understanding of encryption and key management solutions.
  • Experience with working with multiple authentication methods and protocols.
  • Experience with office productivity, reporting, and technical documentation software.
About Stifel

Stifel is more than 130 years old and still thinking like a start-up. We are a global wealth management and investment banking firm serious about innovation and fresh ideas. Built on a simple premise of safeguarding our clients’ money as if it were our own, coined by our namesake, Herman Stifel, our success is intimately tied to our commitment to helping families, companies, and municipalities find their own success.

While our headquarters is in St. Louis, we have offices in New York, San Francisco, Baltimore, London, Frankfurt, Toronto, and more than 400 other locations. Stifel is home to approximately 9,000 individuals who are currently building their careers as financial advisors, research analysts, project managers, marketing specialists, developers, bankers, operations associates, among hundreds more. Let’s talk about how you can find your place here at Stifel, where success meets success.

At Stifel we offer an entrepreneurial environment, comprehensive benefits package to include health, dental and vision care, 401k, wellness initiatives, life insurance, and paid time off.

Stifel is an Equal Opportunity Employer.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AI-Application Security Engineer
AI-Application Security Engineer

Stifel Financial Corp. • Missouri

On-site
USD 90,000 - 120,000
Health insurance
Dental care
Vision care
+2
Cloud Security Engineer
Cloud Security Engineer

Stifel Financial Corp. • Memphis (TN), Northern (KY)

On-site
USD 120,000 - 180,000
Health, dental and vision care
401k & wellness initiatives
Paid time off
Cloud Security Engineer
Cloud Security Engineer

Stifel • Memphis (TN)

On-site
USD 110,000 - 160,000
Sr Developer - Full Stack
Sr Developer - Full Stack

Stifel Financial Corp. • Memphis (TN)

On-site
USD 100,000 - 130,000
Comprehensive benefits package
401k plan
Paid time off
Security Engineer II - CSIR
Security Engineer II - CSIR

Stifel Financial Corp. • Missouri

On-site
USD 80,000 - 100,000
Health insurance
Dental and vision care
401k
+1
AI-Application Security Engineer
AI-Application Security Engineer

Stifel Financial Corp. • St. Louis (MO)

On-site
USD 90,000 - 120,000
Bank Systems Analyst
Bank Systems Analyst

Stifel Financial Corp. • St. Louis (MO)

On-site
USD 60,000 - 80,000
Health insurance
Dental insurance
Vision care
+2
AI Security Architecture VP-3
AI Security Architecture VP-3

State Street • Berwyn (PA)

On-site
USD 120,000 - 203,000
401K with match
Medical Insurance
Dental Insurance
+5
Platform Strategy Specialist
Platform Strategy Specialist

Stifel • St. Louis (MO)

On-site
USD 70,000 - 110,000
Health, dental and vision care
401k
Wellness initiatives
+2
AI Security Architecture VP-3
AI Security Architecture VP-3

State Street • Austin (TX)

On-site
USD 120,000 - 203,000